HackingStolen CredentialsData ExfiltratedCustomer Data InvolvedEmployee Data InvolvedIDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNTMediumContained
New York Blood Center Enterprises
bd_8062973a873e99bf · schema v1 · pii pii-v1
Full breach record for New York Blood Center Enterprises →New York Blood Center Enterprises notified the NH Attorney General of a cybersecurity incident occurring between Jan 20-26, 2025. An unauthorized party accessed the network and exfiltrated files containing names, SSNs, driver's licenses, and financial account info. 6 NH residents were notified on Sep 5, 2025. The company engaged cybersecurity partners, secured systems, and offered 1 year of credit monitoring.
This filing is one of 9 about the same incident.View merged incident
Linked disclosures
Why this link?Regulatory filings (8) · sorted by filing gap
- bd_4cc7e1640f2d1cc8Maine State AGfiled 2025-09-05Candidate
- bd_55ee795695b6f651Delaware State AGfiled 2025-09-05Verified
- bd_69f70ca1ca2f3c49Oregon State AGfiled 2025-09-05Verified
- bd_8a44078c684109ddIndiana State AGfiled 2025-09-05Verified
Show 4 more filings ↓Show fewer ↑up to 4d gap
- bd_98a5c223b0a3fe78Montana State AGfiled 2025-09-05Verified by operator
- bd_c5001b57e805910aCalifornia State AGfiled 2025-09-05Verified
- bd_ef3dd2e5e9fec429Washington State AGfiled 2025-09-05Verified by operator
- bd_3c6450c461889c65Texas State AGfiled 2025-09-09(4d gap)Verified by operator
Source provenance
- Source URL
- https://mm.nh.gov/files/uploads/doj/remote-docs/new-york-blood-center-enterprises-20250905.pdf
DisclosureLens links to the originating regulator URL — full filing bodies are not redistributed from public surfaces (§4.5).
- Filed at
- Sep 5, 2025
- Raw hash
- e72e19b5e6ce205bb3aca6f01196e5f8e96680350a7067c140f1340b2b6e8dea
Reporting entity
- Name
- Aleksandra M. S. Voldnorm: aleksandra m s vold
Victim entity
- Name
- New York Blood Center Enterprisesnorm: new york blood center
Incident
- Discovered
- Jan 26, 2025
- Materiality determined
- —
- Notification sent
- Sep 5, 2025
- Affected individuals
- 6
- Data types
- IDENTITY_BASICIDENTITY_GOVERNMENTFINANCIAL_ACCOUNT
- Attack vector
- Unauthorized Access
- MITRE ATT&CK
- T1078 Valid Accounts
- Threat actor
- ExternalFinancial
- Regulator citations
- Notified New Hampshire Attorney General's Office
- Initial access
- valid_credentials
Compliance
- Time to disclose
- 32 weeks(222 days from discovery to filing)
- Compliance flags
- — (clock not assessable for this source)
Extraction provenance
- Status
- No extraction artifact recorded for this disclosure.